|
Log-Analyse und Auswertung: Interpol Sperrbildschirm-Keinen Zugriff mehr auf meinen RechnerWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
17.06.2014, 09:53 | #16 |
/// the machine /// TB-Ausbilder | Interpol Sperrbildschirm-Keinen Zugriff mehr auf meinen Rechner Ist Servicepack 1 jetzt installiert? http://www.trojaner-board.de/126216-...epair-aio.html Das bitte machen, dann ein frisches FSS und FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.06.2014, 15:13 | #17 |
| Interpol Sperrbildschirm-Keinen Zugriff mehr auf meinen Rechner hallo....
__________________Code:
ATTFilter System Variables -------------------------------------------------------------------------------- OS: Windows 7 Home Premium OS Architecture: 64-bit OS Version: 6.1.7600 OS Service Pack: Computer Name: SABRINASLAPTOP Windows Drive: C:\ Windows Path: C:\Windows Current Profile: C:\Users\Sabrina Boy Current Profile SID: S-1-5-21-2899099275-4155470742-1896681866-1000 Current Profile Classes: S-1-5-21-2899099275-4155470742-1896681866-1000_Classes Profiles Location: C:\Users Profiles Location 2: C:\Windows\ServiceProfiles Local Settings AppData: C:\Users\Sabrina Boy\AppData\Local -------------------------------------------------------------------------------- System Information -------------------------------------------------------------------------------- System Up Time: 0 Days 00:26:34 Process Count: 73 Commit Total: 1,72 GB Commit Limit: 7,60 GB Commit Peak: 1,80 GB Handle Count: 19401 Kernel Total: 329,17 MB Kernel Paged: 247,09 MB Kernel Non Paged: 82,07 MB System Cache: 6,55 GB Thread Count: 802 -------------------------------------------------------------------------------- Memory Before Cleaning with CleanMem -------------------------------------------------------------------------------- Memory Total: 3,80 GB Memory Used: 1,35 GB(35,4826%) Memory Avail.: 2,45 GB -------------------------------------------------------------------------------- Cleaning Memory Before Starting Repairs... Memory After Cleaning with CleanMem -------------------------------------------------------------------------------- Memory Total: 3,80 GB Memory Used: 1,08 GB(28,3584%) Memory Avail.: 2,72 GB -------------------------------------------------------------------------------- Starting Repairs... Start (18.06.2014 15:28:52) 01 - Reset Registry Permissions 01/03 HKEY_CURRENT_USER & Sub Keys Start (18.06.2014 15:28:58) Running Repair Under Current User Account Done (18.06.2014 15:29:03) 01 - Reset Registry Permissions 02/03 HKEY_LOCAL_MACHINE & Sub Keys Start (18.06.2014 15:29:03) Running Repair Under System Account Done (18.06.2014 15:30:38) 01 - Reset Registry Permissions 03/03 HKEY_CLASSES_ROOT & Sub Keys Start (18.06.2014 15:30:38) Running Repair Under System Account Done (18.06.2014 15:31:35) 02 - Reset File Permissions: C: C: & Sub Folders Start (18.06.2014 15:31:35) Running Repair Under System Account Done (18.06.2014 15:42:20) 02 - Reset File Permissions: D: D: & Sub Folders Start (18.06.2014 15:42:20) Running Repair Under System Account Done (18.06.2014 15:42:22) 02 - Reset File Permissions: Q: Q: & Sub Folders Start (18.06.2014 15:42:22) Running Repair Under System Account Done (18.06.2014 15:42:25) 02 - Reset File Permissions: All Profiles C:\Users & Sub Folders Start (18.06.2014 15:42:25) Running Repair Under System Account Done (18.06.2014 15:45:02) 02 - Reset File Permissions: Current Profile C:\Users\Sabrina Boy & Sub Folders Start (18.06.2014 15:45:02) Running Repair Under System Account Done (18.06.2014 15:45:56) 02 - Reset File Permissions: Cleanup Repairing Restricted Folders Permissions To Avoid Infinite Loops Start (18.06.2014 15:45:57) Running Repair Under System Account Processing ACL of: <\\?\C:\Documents and Settings> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Application Data> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Desktop> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Documents> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Favorites> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Start Menu> SetACL finished successfully. Processing ACL of: <\\?\C:\ProgramData\Templates> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Application Data> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Desktop> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Documents> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Favorites> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Start Menu> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\All Users\Templates> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default User> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Application Data> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Cookies> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Local Settings> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\My Documents> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\NetHood> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\PrintHood> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Recent> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\SendTo> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Start Menu> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Templates> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\AppData\Local\Application Data> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\AppData\Local\History> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\AppData\Local\Temporary Internet Files> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Documents\My Music> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Documents\My Pictures> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Default\Documents\My Videos> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Public\Documents\My Music> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Public\Documents\My Pictures> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Public\Documents\My Videos> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Administrator\Application Data> Reading the SD from <\\?\C:\Users\Administrator\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Cookies> Reading the SD from <\\?\C:\Users\Administrator\Cookies> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Local Settings> Reading the SD from <\\?\C:\Users\Administrator\Local Settings> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\My Documents> Reading the SD from <\\?\C:\Users\Administrator\My Documents> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\NetHood> Reading the SD from <\\?\C:\Users\Administrator\NetHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\PrintHood> Reading the SD from <\\?\C:\Users\Administrator\PrintHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Recent> Reading the SD from <\\?\C:\Users\Administrator\Recent> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\SendTo> Reading the SD from <\\?\C:\Users\Administrator\SendTo> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Start Menu> Reading the SD from <\\?\C:\Users\Administrator\Start Menu> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Templates> Reading the SD from <\\?\C:\Users\Administrator\Templates> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\AppData\Local\Application Data> Reading the SD from <\\?\C:\Users\Administrator\AppData\Local\Application Data> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\AppData\Local\History> Reading the SD from <\\?\C:\Users\Administrator\AppData\Local\History> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\AppData\Local\Temporary Internet Files> Reading the SD from <\\?\C:\Users\Administrator\AppData\Local\Temporary Internet Files> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Documents\My Music> Reading the SD from <\\?\C:\Users\Administrator\Documents\My Music> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Documents\My Pictures> Reading the SD from <\\?\C:\Users\Administrator\Documents\My Pictures> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\Administrator\Documents\My Videos> Reading the SD from <\\?\C:\Users\Administrator\Documents\My Videos> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Application Data> Reading the SD from <\\?\C:\Users\AppData\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Cookies> Reading the SD from <\\?\C:\Users\AppData\Cookies> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Local Settings> Reading the SD from <\\?\C:\Users\AppData\Local Settings> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\My Documents> Reading the SD from <\\?\C:\Users\AppData\My Documents> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\NetHood> Reading the SD from <\\?\C:\Users\AppData\NetHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\PrintHood> Reading the SD from <\\?\C:\Users\AppData\PrintHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Recent> Reading the SD from <\\?\C:\Users\AppData\Recent> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\SendTo> Reading the SD from <\\?\C:\Users\AppData\SendTo> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Start Menu> Reading the SD from <\\?\C:\Users\AppData\Start Menu> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Templates> Reading the SD from <\\?\C:\Users\AppData\Templates> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\AppData\AppData\Local\Application Data> Reading the SD from <\\?\C:\Users\AppData\AppData\Local\Application Data> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\AppData\AppData\Local\History> Reading the SD from <\\?\C:\Users\AppData\AppData\Local\History> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\AppData\AppData\Local\Temporary Internet Files> Reading the SD from <\\?\C:\Users\AppData\AppData\Local\Temporary Internet Files> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Documents\My Music> Reading the SD from <\\?\C:\Users\AppData\Documents\My Music> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Documents\My Pictures> Reading the SD from <\\?\C:\Users\AppData\Documents\My Pictures> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\AppData\Documents\My Videos> Reading the SD from <\\?\C:\Users\AppData\Documents\My Videos> failed with: Das System kann den angegebenen Pfad nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann den angegebenen Pfad nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\Application Data> Reading the SD from <\\?\C:\Users\Bocken\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\Cookies> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Bocken\Local Settings> Reading the SD from <\\?\C:\Users\Bocken\Local Settings> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\My Documents> Reading the SD from <\\?\C:\Users\Bocken\My Documents> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\NetHood> Reading the SD from <\\?\C:\Users\Bocken\NetHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\PrintHood> Reading the SD from <\\?\C:\Users\Bocken\PrintHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\Recent> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Bocken\SendTo> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Bocken\Start Menu> Reading the SD from <\\?\C:\Users\Bocken\Start Menu> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\Templates> Reading the SD from <\\?\C:\Users\Bocken\Templates> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\AppData\Local\Application Data> Reading the SD from <\\?\C:\Users\Bocken\AppData\Local\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\AppData\Local\History> Reading the SD from <\\?\C:\Users\Bocken\AppData\Local\History> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\AppData\Local\Temporary Internet Files> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Bocken\Documents\My Music> Reading the SD from <\\?\C:\Users\Bocken\Documents\My Music> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\Documents\My Pictures> Reading the SD from <\\?\C:\Users\Bocken\Documents\My Pictures> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Bocken\Documents\My Videos> Reading the SD from <\\?\C:\Users\Bocken\Documents\My Videos> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Application Data> Reading the SD from <\\?\C:\Users\Sabrina Boy\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Cookies> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Local Settings> Reading the SD from <\\?\C:\Users\Sabrina Boy\Local Settings> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\My Documents> Reading the SD from <\\?\C:\Users\Sabrina Boy\My Documents> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\NetHood> Reading the SD from <\\?\C:\Users\Sabrina Boy\NetHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\PrintHood> Reading the SD from <\\?\C:\Users\Sabrina Boy\PrintHood> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Recent> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Sabrina Boy\SendTo> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Start Menu> Reading the SD from <\\?\C:\Users\Sabrina Boy\Start Menu> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Templates> Reading the SD from <\\?\C:\Users\Sabrina Boy\Templates> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\AppData\Local\Application Data> Reading the SD from <\\?\C:\Users\Sabrina Boy\AppData\Local\Application Data> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\AppData\Local\History> Reading the SD from <\\?\C:\Users\Sabrina Boy\AppData\Local\History> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\AppData\Local\Temporary Internet Files> SetACL finished successfully. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Documents\My Music> Reading the SD from <\\?\C:\Users\Sabrina Boy\Documents\My Music> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Documents\My Pictures> Reading the SD from <\\?\C:\Users\Sabrina Boy\Documents\My Pictures> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Processing ACL of: <\\?\C:\Users\Sabrina Boy\Documents\My Videos> Reading the SD from <\\?\C:\Users\Sabrina Boy\Documents\My Videos> failed with: Das System kann die angegebene Datei nicht finden. SetACL finished with error(s): SetACL error message: The call to GetNamedSecurityInfo () failed Operating system error message: Das System kann die angegebene Datei nicht finden. Done (18.06.2014 15:46:01) 03 - Register System Files Start (18.06.2014 15:46:01) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:46:35) 04 - Repair WMI Start (18.06.2014 15:46:35) Starting Security Center So We Can Export The Security Info. Exporting Antivirus Info... Avira Desktop Exported. Exporting AntiSpyware Info... Avira Desktop Exported. Windows Defender Exported. Exporting 3rd Party Firewall Info... No Firewall Products Reported. Running Repair Under Current User Account Done (18.06.2014 15:49:02) 05 - Repair Windows Firewall Start (18.06.2014 15:49:02) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:49:36) 06 - Repair Internet Explorer Start (18.06.2014 15:49:36) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:50:04) 07 - Repair MDAC/MS Jet Start (18.06.2014 15:50:04) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:50:15) 08 - Repair Hosts File Start (18.06.2014 15:50:15) Running Repair Under System Account Done (18.06.2014 15:50:17) 09 - Remove Policies Set By Infections Start (18.06.2014 15:50:17) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:50:22) 10 - Repair Start Menu Icons Removed By Infections Start (18.06.2014 15:50:22) Running Repair Under System Account Done (18.06.2014 15:50:24) 11 - Repair Icons Start (18.06.2014 15:50:25) Running Repair Under Current User Account Done (18.06.2014 15:50:27) 12 - Repair Winsock & DNS Cache Start (18.06.2014 15:50:27) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:50:53) 13 - Remove Temp Files Start (18.06.2014 15:50:53) Running Repair Under System Account Done (18.06.2014 15:50:55) 14 - Repair Proxy Settings Start (18.06.2014 15:50:55) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:51:00) 15 - Unhide Non System Files Start (18.06.2014 15:51:00) C:\ - Total Files Unhidden: 642 - Check Unhidden_Files.txt for list of files unhidden D:\ - Total Files Unhidden: 0 - Check Unhidden_Files.txt for list of files unhidden Q:\ - Total Files Unhidden: 0 - Check Unhidden_Files.txt for list of files unhidden Done (18.06.2014 15:51:55) 16 - Repair Windows Updates Start (18.06.2014 15:51:55) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:52:16) 17 - Repair CD/DVD Missing/Not Working Start (18.06.2014 15:52:16) iTunes not found, not applying UpperFilters iTunes Reg Key Done (18.06.2014 15:52:16) 18 - Repair Volume Shadow Copy Service Start (18.06.2014 15:52:16) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:52:25) 19 - Repair Windows Sidebar/Gadgets Start (18.06.2014 15:52:25) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:52:30) 20 - Repair MSI (Windows Installer) Start (18.06.2014 15:52:30) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:52:43) 21 - Repair Windows Snipping Tool Start (18.06.2014 15:52:43) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:52:47) 22.01 - Repair bat Association Start (18.06.2014 15:52:48) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:52:52) 22.02 - Repair cmd Association Start (18.06.2014 15:52:52) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:52:57) 22.03 - Repair com Association Start (18.06.2014 15:52:57) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:02) 22.04 - Repair Directory Association Start (18.06.2014 15:53:02) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:06) 22.05 - Repair Drive Association Start (18.06.2014 15:53:06) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:11) 22.06 - Repair exe Association Start (18.06.2014 15:53:11) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:16) 22.07 - Repair Folder Association Start (18.06.2014 15:53:16) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:21) 22.08 - Repair inf Association Start (18.06.2014 15:53:21) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:25) 22.09 - Repair lnk (Shortcuts) Association Start (18.06.2014 15:53:25) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:30) 22.10 - Repair msc Association Start (18.06.2014 15:53:30) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:35) 22.11 - Repair reg Association Start (18.06.2014 15:53:35) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:40) 22.12 - Repair scr Association Start (18.06.2014 15:53:40) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:44) 23 - Repair Windows Safe Mode Start (18.06.2014 15:53:44) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:53:49) 24 - Repair Print Spooler Start (18.06.2014 15:53:49) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:54:04) 25 - Restore Important Windows Services Start (18.06.2014 15:54:04) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:54:30) 26 - Set Windows Services To Default Startup Start (18.06.2014 15:54:30) Running Repair Under Current User Account Running Repair Under System Account Done (18.06.2014 15:54:37) Skipping Repair. Repair is for Windows v6.2 (Windows 8 & Newer) or higher. Current version: 6.1 Skipping Repair. Repair is for Windows v6.2 (Windows 8 & Newer) or higher. Current version: 6.1 Skipping Repair. Repair is for Windows v6.2 (Windows 8 & Newer) or higher. Current version: 6.1 Cleaning up empty logs... All Selected Repairs Done. Done (18.06.2014 15:54:37) Total Repair Time: 00:25:50 ...YOU MUST RESTART YOUR SYSTEM... Running Repair Under Current User Account Code:
ATTFilter Farbar Service Scanner Version: 10-06-2014 Ran by Sabrina Boy (administrator) on 18-06-2014 at 16:11:03 Running from "C:\Users\Sabrina Boy\Desktop" Microsoft Windows 7 Home Premium (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Action Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => File is digitally signed C:\Windows\System32\drivers\nsiproxy.sys => File is digitally signed C:\Windows\System32\dhcpcore.dll => File is digitally signed C:\Windows\System32\drivers\afd.sys => File is digitally signed C:\Windows\System32\drivers\tdx.sys => File is digitally signed C:\Windows\System32\Drivers\tcpip.sys => File is digitally signed C:\Windows\System32\dnsrslvr.dll => File is digitally signed C:\Windows\System32\mpssvc.dll => File is digitally signed C:\Windows\System32\bfe.dll => File is digitally signed C:\Windows\System32\drivers\mpsdrv.sys => File is digitally signed C:\Windows\System32\SDRSVC.dll => File is digitally signed C:\Windows\System32\vssvc.exe => File is digitally signed C:\Windows\System32\wscsvc.dll => File is digitally signed C:\Windows\System32\wbem\WMIsvc.dll => File is digitally signed C:\Windows\System32\wuaueng.dll => File is digitally signed C:\Windows\System32\qmgr.dll => File is digitally signed C:\Windows\System32\es.dll => File is digitally signed C:\Windows\System32\cryptsvc.dll => File is digitally signed C:\Program Files\Windows Defender\MpSvc.dll => File is digitally signed C:\Windows\System32\ipnathlp.dll => File is digitally signed C:\Windows\System32\iphlpsvc.dll => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed **** End of log **** FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-06-2014 Ran by Sabrina Boy (administrator) on SABRINASLAPTOP on 18-06-2014 16:09:23 Running from C:\Users\Sabrina Boy\Desktop Platform: Windows 7 Home Premium (X64) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AMD) C:\Windows\System32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe (Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Realtek Semiconductor Corp.) C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe (Realtek Semiconductor Corp.) C:\Program Files\Realtek\RtVOsd\RtVOsd.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_11_4_402_265_ActiveX.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Health Check\HPHC_Service.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2095400 2010-04-16] (Synaptics Incorporated) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6234144 2010-03-13] (Realtek Semiconductor) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-04-13] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2010-06-21] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [737872 2014-06-05] (Avira Operations GmbH & Co. KG) HKLM\...\RunOnce: [NCPluginUpdater] - "c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe" Update [21720 2014-06-10] (Hewlett-Packard) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1 HKU\S-1-5-21-2899099275-4155470742-1896681866-1000\...\Policies\system: [DisableLockWorkstation] 0 HKU\S-1-5-21-2899099275-4155470742-1896681866-1000\...\Policies\system: [DisableChangePassword] 0 HKU\S-1-5-21-2899099275-4155470742-1896681866-1000\...\MountPoints2: F - F:\ting.exe HKU\S-1-5-21-2899099275-4155470742-1896681866-1000\...\MountPoints2: {245b7740-b66e-11e2-9d25-a6699b6f42c6} - F:\ting.exe Startup: C:\Users\Bocken\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4 URLSearchHook: HKLM-x32 - ZoneAlarm-Sicherheit Toolbar - {fc2b76fc-2132-4d80-a9a3-1f5c6e49066b} - C:\Program Files (x86)\ZoneAlarm-Sicherheit\tbZone.dll (Conduit Ltd.) URLSearchHook: HKCU - ZoneAlarm-Sicherheit Toolbar - {fc2b76fc-2132-4d80-a9a3-1f5c6e49066b} - C:\Program Files (x86)\ZoneAlarm-Sicherheit\tbZone.dll (Conduit Ltd.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - {3CA16FF5-57F5-4DE0-9165-E463438C1B2F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKLM - {9AA0EE78-F120-4F67-8760-0DE1FE14D329} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms} SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKLM-x32 - {3CA16FF5-57F5-4DE0-9165-E463438C1B2F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF SearchScopes: HKCU - {13C2FF9F-313B-48DC-A2D2-DA4A07002C34} URL = SearchScopes: HKCU - {3CA16FF5-57F5-4DE0-9165-E463438C1B2F} URL = BHO: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO-x32: No Name - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - No File BHO-x32: No Name - {DBC80044-A445-435b-BC74-9C25C1C588A9} - No File Toolbar: HKCU - No Name - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File DPF: HKLM-x32 {6E718D87-6909-4FCE-92D4-EDCB2F725727} hxxp://www.navigram.com/engine/v1111/Navigram.cab DPF: HKLM-x32 {888078C6-70B2-4F88-8EE7-1F50DDEA6120} https://as.photoprintit.de/ips-opdata/activex/ImageUploader6.cab Handler: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\system32\urlmon.dll (Microsoft Corporation) Handler-x32: gopher - {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\Windows\syswow64\urlmon.dll (Microsoft Corporation) Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2010-07-17] (EasyBits Software Corp.) Tcpip\Parameters: [DhcpNameServer] 192.168.43.1 FireFox: ======== FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF HKLM-x32\...\Firefox\Extensions: [{13893AF3-7C14-43C9-943C-F7375E3FAA88}] - C:\Windows\Installer\{ECE8D100-69C8-4BF1-914D-D997C792E5E5}\{13893AF3-7C14-43C9-943C-F7375E3FAA88}.xpi FF Extension: Download Protect - C:\Windows\Installer\{ECE8D100-69C8-4BF1-914D-D997C792E5E5}\{13893AF3-7C14-43C9-943C-F7375E3FAA88}.xpi [2014-06-02] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-06-05] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-06-05] (Avira Operations GmbH & Co. KG) R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed] R2 HP Health Check Service; C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe [121344 2010-06-30] (Hewlett-Packard Company) [File not signed] R2 LightScribeService; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [73728 2010-05-19] (Hewlett-Packard Company) [File not signed] R2 RtVOsdService; C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe [315392 2010-06-17] (Realtek Semiconductor Corp.) [File not signed] ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [112080 2014-06-05] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-06-05] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-12] (Avira Operations GmbH & Co. KG) S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-07-18] () [File not signed] S3 RSUSBSTOR; C:\Windows\SysWOW64\Drivers\RtsUStor.sys [225280 2009-09-23] (Realtek Semiconductor Corp.) S3 ssm_bus; C:\Windows\System32\DRIVERS\ssm_bus.sys [136192 2013-06-21] (MCCI Corporation) S3 ssm_mdfl; C:\Windows\System32\DRIVERS\ssm_mdfl.sys [18944 2013-06-21] (MCCI Corporation) S3 ssm_mdm; C:\Windows\System32\DRIVERS\ssm_mdm.sys [172032 2013-06-21] (MCCI Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-18 16:09 - 2014-06-18 16:09 - 00003222 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForSabrina Boy 2014-06-18 16:09 - 2014-06-18 16:09 - 00000356 _____ () C:\Windows\Tasks\HPCeeScheduleForSabrina Boy.job 2014-06-18 15:55 - 2014-06-18 15:55 - 00000352 _____ () C:\Windows\PFRO.log 2014-06-18 15:52 - 2014-06-18 15:52 - 00000220 _____ () C:\Windows\Tasks\SidebarExecute.job 2014-06-18 15:28 - 2014-06-18 15:54 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2014-06-18 15:26 - 2014-06-18 15:26 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-SABRINASLAPTOP-Microsoft-Windows-7-Home-Premium-(64-bit).dat 2014-06-18 15:25 - 2014-06-18 15:25 - 00000000 ____D () C:\RegBackup 2014-06-18 15:02 - 2014-06-18 15:02 - 00003288 _____ () C:\bootsqm.dat 2014-06-18 14:48 - 2014-06-18 14:48 - 00000000 ____D () C:\Users\Sabrina Boy\Desktop\tweaking.com_windows_repair_aio 2014-06-18 14:47 - 2014-06-18 14:48 - 03434761 _____ () C:\Users\Sabrina Boy\Desktop\tweaking.com_windows_repair_aio.zip 2014-06-18 13:16 - 2014-06-18 13:16 - 00000072 _____ () C:\Users\Public\LMDebug.log 2014-06-18 13:14 - 2014-06-18 13:14 - 00000000 ____D () C:\Program Files (x86)\SamsungPrinterLiveUpdate 2014-06-16 22:43 - 2014-06-16 22:43 - 00415744 _____ (Farbar) C:\Users\Sabrina Boy\Desktop\FSS.exe 2014-06-16 22:24 - 2014-06-18 15:59 - 00069240 _____ () C:\Users\Sabrina Boy\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-16 22:23 - 2014-06-18 15:56 - 00305472 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-06-12 15:55 - 2014-06-18 15:59 - 00000560 _____ () C:\Windows\setupact.log 2014-06-12 15:55 - 2014-06-12 15:55 - 00000000 _____ () C:\Windows\setuperr.log 2014-06-12 12:37 - 2014-06-18 16:09 - 00011833 _____ () C:\Users\Sabrina Boy\Desktop\FRST.txt 2014-06-12 12:36 - 2014-06-16 22:36 - 00000000 ____D () C:\Users\Sabrina Boy\Desktop\FRST-OlderVersion 2014-06-12 12:13 - 2014-06-12 12:14 - 00854367 _____ () C:\Users\Sabrina Boy\Desktop\SecurityCheck.exe 2014-06-10 13:32 - 2014-06-10 13:32 - 02347384 _____ (ESET) C:\Users\Sabrina Boy\esetsmartinstaller_deu.exe 2014-06-05 16:28 - 2014-06-05 16:28 - 00001661 _____ () C:\Users\Sabrina Boy\Desktop\JRT.txt 2014-06-05 16:21 - 2014-06-05 16:21 - 00000000 ____D () C:\Windows\ERUNT 2014-06-05 16:20 - 2014-06-05 16:21 - 01016261 _____ (Thisisu) C:\Users\Sabrina Boy\Desktop\JRT.exe 2014-06-05 16:08 - 2014-06-05 16:09 - 00000000 ____D () C:\AdwCleaner 2014-06-05 16:02 - 2014-06-05 16:07 - 01327971 _____ () C:\Users\Sabrina Boy\Desktop\adwcleaner_3.211.exe 2014-06-05 16:01 - 2014-06-05 16:01 - 00001150 _____ () C:\Users\Sabrina Boy\Desktop\mbam.txt 2014-06-05 15:38 - 2014-06-05 15:38 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-05 15:37 - 2014-06-05 15:37 - 00001066 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-06-05 15:37 - 2014-06-05 15:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-06-05 15:37 - 2014-06-05 15:37 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-05 15:37 - 2014-06-05 15:37 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-06-05 15:37 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-06-05 15:37 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-06-05 15:37 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-06-05 15:32 - 2014-06-05 15:36 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Sabrina Boy\Desktop\mbam-setup-2.0.2.1012.exe 2014-06-04 16:31 - 2014-06-04 16:32 - 00028062 _____ () C:\Users\Sabrina Boy\Desktop\Addition.txt 2014-06-04 16:29 - 2014-06-16 22:36 - 02081280 _____ (Farbar) C:\Users\Sabrina Boy\Desktop\FRST64.exe 2014-06-02 22:40 - 2014-06-18 16:09 - 00000000 ____D () C:\FRST 2014-06-02 14:22 - 2014-06-16 22:38 - 00000008 __RSH () C:\ProgramData\ntuser.pol 2014-06-02 14:11 - 2014-06-02 14:12 - 00000114 _____ () C:\ProgramData\RUNDLL32.EXE-2540-F.txt 2014-06-02 13:47 - 2014-06-02 13:48 - 00000715 _____ () C:\ProgramData\RUNDLL32.EXE-2200-F.txt 2014-06-02 13:44 - 2014-06-02 13:45 - 00000227 _____ () C:\ProgramData\RUNDLL32.EXE-2364-F.txt 2014-06-02 12:00 - 2014-06-02 12:00 - 00000113 _____ () C:\ProgramData\RUNDLL32.EXE-2456-F.txt 2014-06-02 11:48 - 2014-06-02 11:48 - 00000366 _____ () C:\ProgramData\RUNDLL32.EXE-1160-F.txt 2014-06-02 11:27 - 2014-06-02 11:27 - 00000609 _____ () C:\ProgramData\RUNDLL32.EXE-2604-F.txt 2014-06-02 10:34 - 2014-06-02 10:34 - 00069240 _____ () C:\Users\Bocken\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-02 10:21 - 2014-06-02 10:24 - 00000455 _____ () C:\ProgramData\RUNDLL32.EXE-2672-F.txt 2014-06-02 10:15 - 2014-06-02 10:19 - 00002622 _____ () C:\ProgramData\RUNDLL32.EXE-3608-F.txt 2014-05-25 14:57 - 2014-05-25 14:57 - 00000000 ____D () C:\Users\Sabrina Boy\AppData\Roaming\dlg 2014-05-25 14:56 - 2014-05-25 14:56 - 00119296 _____ () C:\Windows\system32\itsacapi_pe-2.3.exe 2014-05-25 14:53 - 2014-06-02 15:15 - 00000000 ____D () C:\Users\Sabrina Boy\AppData\Roaming\Security System 2 2014-05-25 14:50 - 2014-05-25 14:50 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe 2014-05-25 14:50 - 2014-05-25 14:50 - 00000000 ____D () C:\Users\Administrator 2014-05-20 20:23 - 2014-05-20 20:55 - 00000000 ____D () C:\Users\Sabrina Boy\Desktop\Vatertag 2014-05-20 20:19 - 2014-06-18 15:46 - 00544627 _____ () C:\Windows\WindowsUpdate.log ==================== One Month Modified Files and Folders ======= 2014-06-18 16:09 - 2014-06-18 16:09 - 00003222 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForSabrina Boy 2014-06-18 16:09 - 2014-06-18 16:09 - 00000356 _____ () C:\Windows\Tasks\HPCeeScheduleForSabrina Boy.job 2014-06-18 16:09 - 2014-06-12 12:37 - 00011833 _____ () C:\Users\Sabrina Boy\Desktop\FRST.txt 2014-06-18 16:09 - 2014-06-02 22:40 - 00000000 ____D () C:\FRST 2014-06-18 16:09 - 2014-05-20 20:19 - 00544627 _____ () C:\Windows\WindowsUpdate.log 2014-06-18 16:09 - 2011-03-05 17:59 - 00000000 ____D () C:\Users\Sabrina Boy\AppData\Local\Temp 2014-06-18 16:08 - 2013-01-11 14:50 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log 2014-06-18 16:00 - 2010-07-17 20:47 - 00640990 _____ () C:\Windows\system32\perfh007.dat 2014-06-18 16:00 - 2010-07-17 20:47 - 00126264 _____ () C:\Windows\system32\perfc007.dat 2014-06-18 16:00 - 2009-07-14 07:13 - 01500294 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-06-18 16:00 - 2009-07-14 06:45 - 00023024 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-06-18 16:00 - 2009-07-14 06:45 - 00023024 _____ () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-06-18 15:59 - 2014-06-16 22:24 - 00069240 _____ () C:\Users\Sabrina Boy\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-18 15:59 - 2014-06-12 15:55 - 00000560 _____ () C:\Windows\setupact.log 2014-06-18 15:56 - 2014-06-16 22:23 - 00305472 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-06-18 15:56 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-06-18 15:55 - 2014-06-18 15:55 - 00000352 _____ () C:\Windows\PFRO.log 2014-06-18 15:54 - 2014-06-18 15:28 - 00181064 _____ (Sysinternals) C:\Windows\PSEXESVC.EXE 2014-06-18 15:52 - 2014-06-18 15:52 - 00000220 _____ () C:\Windows\Tasks\SidebarExecute.job 2014-06-18 15:50 - 2009-07-14 04:34 - 00000439 _____ () C:\Windows\win.ini 2014-06-18 15:26 - 2014-06-18 15:26 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-SABRINASLAPTOP-Microsoft-Windows-7-Home-Premium-(64-bit).dat 2014-06-18 15:25 - 2014-06-18 15:25 - 00000000 ____D () C:\RegBackup 2014-06-18 15:02 - 2014-06-18 15:02 - 00003288 _____ () C:\bootsqm.dat 2014-06-18 14:48 - 2014-06-18 14:48 - 00000000 ____D () C:\Users\Sabrina Boy\Desktop\tweaking.com_windows_repair_aio 2014-06-18 14:48 - 2014-06-18 14:47 - 03434761 _____ () C:\Users\Sabrina Boy\Desktop\tweaking.com_windows_repair_aio.zip 2014-06-18 13:16 - 2014-06-18 13:16 - 00000072 _____ () C:\Users\Public\LMDebug.log 2014-06-18 13:14 - 2014-06-18 13:14 - 00000000 ____D () C:\Program Files (x86)\SamsungPrinterLiveUpdate 2014-06-18 13:14 - 2012-02-18 15:06 - 00000000 ____D () C:\ProgramData\Samsung 2014-06-16 22:43 - 2014-06-16 22:43 - 00415744 _____ (Farbar) C:\Users\Sabrina Boy\Desktop\FSS.exe 2014-06-16 22:38 - 2014-06-02 14:22 - 00000008 __RSH () C:\ProgramData\ntuser.pol 2014-06-16 22:37 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\GroupPolicy 2014-06-16 22:36 - 2014-06-12 12:36 - 00000000 ____D () C:\Users\Sabrina Boy\Desktop\FRST-OlderVersion 2014-06-16 22:36 - 2014-06-04 16:29 - 02081280 _____ (Farbar) C:\Users\Sabrina Boy\Desktop\FRST64.exe 2014-06-16 22:31 - 2013-08-17 21:06 - 00000000 ____D () C:\Windows\system32\MRT 2014-06-16 22:28 - 2011-03-11 09:30 - 95414520 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-06-12 15:55 - 2014-06-12 15:55 - 00000000 _____ () C:\Windows\setuperr.log 2014-06-12 12:14 - 2014-06-12 12:13 - 00854367 _____ () C:\Users\Sabrina Boy\Desktop\SecurityCheck.exe 2014-06-10 13:32 - 2014-06-10 13:32 - 02347384 _____ (ESET) C:\Users\Sabrina Boy\esetsmartinstaller_deu.exe 2014-06-10 13:32 - 2011-03-05 17:59 - 00000000 ____D () C:\Users\Sabrina Boy 2014-06-10 13:25 - 2011-03-09 18:41 - 00000000 ____D () C:\Users\Bocken\AppData\Local\Temp 2014-06-05 16:28 - 2014-06-05 16:28 - 00001661 _____ () C:\Users\Sabrina Boy\Desktop\JRT.txt 2014-06-05 16:21 - 2014-06-05 16:21 - 00000000 ____D () C:\Windows\ERUNT 2014-06-05 16:21 - 2014-06-05 16:20 - 01016261 _____ (Thisisu) C:\Users\Sabrina Boy\Desktop\JRT.exe 2014-06-05 16:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system 2014-06-05 16:09 - 2014-06-05 16:08 - 00000000 ____D () C:\AdwCleaner 2014-06-05 16:07 - 2014-06-05 16:02 - 01327971 _____ () C:\Users\Sabrina Boy\Desktop\adwcleaner_3.211.exe 2014-06-05 16:01 - 2014-06-05 16:01 - 00001150 _____ () C:\Users\Sabrina Boy\Desktop\mbam.txt 2014-06-05 15:38 - 2014-06-05 15:38 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-06-05 15:37 - 2014-06-05 15:37 - 00001066 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-06-05 15:37 - 2014-06-05 15:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-06-05 15:37 - 2014-06-05 15:37 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-06-05 15:37 - 2014-06-05 15:37 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-06-05 15:36 - 2014-06-05 15:32 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Sabrina Boy\Desktop\mbam-setup-2.0.2.1012.exe 2014-06-05 15:25 - 2013-03-29 11:57 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2014-06-05 15:25 - 2013-03-29 11:57 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-06-04 16:32 - 2014-06-04 16:31 - 00028062 _____ () C:\Users\Sabrina Boy\Desktop\Addition.txt 2014-06-03 00:19 - 2011-08-12 18:55 - 00000000 ____D () C:\Windows\pss 2014-06-03 00:19 - 2011-03-09 18:41 - 00000000 ____D () C:\Users\Bocken 2014-06-03 00:19 - 2010-09-20 15:29 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-06-03 00:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration 2014-06-02 21:58 - 2011-07-06 06:49 - 00000000 ____D () C:\ProgramData\Recovery 2014-06-02 21:07 - 2010-07-17 11:19 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-06-02 21:06 - 2010-09-20 05:57 - 00000000 ____D () C:\ProgramData\WildTangent 2014-06-02 21:06 - 2010-09-20 05:57 - 00000000 ____D () C:\Program Files (x86)\HP Games 2014-06-02 21:06 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-06-02 15:15 - 2014-05-25 14:53 - 00000000 ____D () C:\Users\Sabrina Boy\AppData\Roaming\Security System 2 2014-06-02 14:12 - 2014-06-02 14:11 - 00000114 _____ () C:\ProgramData\RUNDLL32.EXE-2540-F.txt 2014-06-02 13:48 - 2014-06-02 13:47 - 00000715 _____ () C:\ProgramData\RUNDLL32.EXE-2200-F.txt 2014-06-02 13:45 - 2014-06-02 13:44 - 00000227 _____ () C:\ProgramData\RUNDLL32.EXE-2364-F.txt 2014-06-02 12:00 - 2014-06-02 12:00 - 00000113 _____ () C:\ProgramData\RUNDLL32.EXE-2456-F.txt 2014-06-02 11:48 - 2014-06-02 11:48 - 00000366 _____ () C:\ProgramData\RUNDLL32.EXE-1160-F.txt 2014-06-02 11:27 - 2014-06-02 11:27 - 00000609 _____ () C:\ProgramData\RUNDLL32.EXE-2604-F.txt 2014-06-02 10:34 - 2014-06-02 10:34 - 00069240 _____ () C:\Users\Bocken\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-02 10:24 - 2014-06-02 10:21 - 00000455 _____ () C:\ProgramData\RUNDLL32.EXE-2672-F.txt 2014-06-02 10:19 - 2014-06-02 10:15 - 00002622 _____ () C:\ProgramData\RUNDLL32.EXE-3608-F.txt 2014-05-25 14:57 - 2014-05-25 14:57 - 00000000 ____D () C:\Users\Sabrina Boy\AppData\Roaming\dlg 2014-05-25 14:57 - 2011-03-05 23:29 - 00000822 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2014-05-25 14:57 - 2011-03-05 23:29 - 00000000 ____D () C:\Program Files\CCleaner 2014-05-25 14:56 - 2014-05-25 14:56 - 00119296 _____ () C:\Windows\system32\itsacapi_pe-2.3.exe 2014-05-25 14:50 - 2014-05-25 14:50 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Adobe 2014-05-25 14:50 - 2014-05-25 14:50 - 00000000 ____D () C:\Users\Administrator 2014-05-20 20:55 - 2014-05-20 20:23 - 00000000 ____D () C:\Users\Sabrina Boy\Desktop\Vatertag Files to move or delete: ==================== C:\Users\Sabrina Boy\esetsmartinstaller_deu.exe Some content of TEMP: ==================== C:\Users\Bocken\AppData\Local\Temp\avgnt.exe C:\Users\Sabrina Boy\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2013-06-23 14:12 ==================== End Of Log ============================ |
19.06.2014, 13:13 | #18 |
/// the machine /// TB-Ausbilder | Interpol Sperrbildschirm-Keinen Zugriff mehr auf meinen Rechner Servicepack 1 fehlt immer noch. Noch Probleme?
__________________
__________________ |
Themen zu Interpol Sperrbildschirm-Keinen Zugriff mehr auf meinen Rechner |
administrator, bootmgr, conduitsearch, conduitsearch entfernen, explorer.exe, i8042prt.sys, igdpmd64.sys, js/toolbar.crossrider.b, launch, registry, services.exe, svchost.exe, usbvideo.sys, win32/bundled.toolbar.ask, win32/bundled.toolbar.ask.d, win32/bundled.toolbar.google.e, win32/downloadsponsor.a, win32/pricegong.a, win32/toolbar.conduit.b, win32/toolbar.conduit.o, win32/toolbar.conduit.p, win32/toolbar.conduit.q, win64/kryptik.fz, winlogon.exe |